All Products
Search
Document Center

Cloud Firewall:BatchCopyVpcFirewallControlPolicy

Last Updated:Nov 25, 2025

Copies all policies from a source VPC firewall policy group to a destination VPC firewall policy group.

Note

This API has been deprecated with no replacement. While temporary access is maintained, no further updates or bug fixes will be provided. To ensure continued functionality, plan your migration and contact your account manager for support.

Operation description

This API copies all policies from a source VPC firewall policy group to a destination VPC firewall policy group.

Back up your policies before you run this operation. For more information about policy backups, see Policy backup.

After this operation is complete, the policies in the destination VPC firewall policy group are completely replaced by the policies from the source VPC firewall policy group.

The source and destination VPC firewall policy groups must belong to the same Alibaba Cloud account.

QPS limits

The queries per second (QPS) limit for a single user is 10 calls per second. If the number of calls to the API exceeds this limit, your calls are throttled. This may affect your business. Ensure that you call this API within the limit.

Try it now

Try this API in OpenAPI Explorer, no manual signing needed. Successful calls auto-generate SDK code matching your parameters. Download it with built-in credential security for local usage.

Test

RAM authorization

No authorization for this operation. If you encounter issues with this operation, contact technical support.

Request parameters

Parameter

Type

Required

Description

Example

SourceIp deprecated

string

No

The source IP address of the request.

192.0.XX.XX

Lang

string

No

The language of the request and response. Valid values:

  • zh (default): Chinese.

  • en: English.

zh

SourceVpcFirewallId

string

Yes

The ID of the policy group for the source VPC firewall. Valid values:

  • If the VPC firewall protects traffic between a network instance in a Cloud Enterprise Network (CEN) and a specified VPC, use the ID of the CEN instance. The network instance can be a VPC, a Virtual Border Router (VBR), or a Cloud Connect Network (CCN) instance.

  • If the VPC firewall protects traffic between two VPCs connected by an Express Connect circuit, use the ID of the VPC firewall instance.

Note

Call the DescribeVpcFirewallAclGroupList operation to query the ID.

vfw-a42bbb7b887148c9****

TargetVpcFirewallId

string

Yes

The ID of the policy group for the destination VPC firewall. Valid values:

  • If the VPC firewall protects traffic between a network instance in a Cloud Enterprise Network (CEN) and a specified VPC, use the ID of the CEN instance. The network instance can be a VPC, a Virtual Border Router (VBR), or a Cloud Connect Network (CCN) instance.

  • If the VPC firewall protects traffic between two VPCs connected by an Express Connect circuit, use the ID of the VPC firewall instance.

Note

Call the DescribeVpcFirewallAclGroupList operation to query the ID.

vfw-e37d3a04cf79446a****

Response elements

Element

Type

Description

Example

object

The response parameters.

RequestId

string

The ID of the request.

850A84D6-0DE4-4797-A1E8-00090125k6j3

Examples

Success response

JSON format

{
  "RequestId": "850A84D6-0DE4-4797-A1E8-00090125k6j3"
}

Error codes

HTTP status code

Error code

Error message

Description

400 ErrorParametersUid The aliUid parameter is invalid. The aliUid parameter is invalid.
400 ErrorParametersSource The source is invalid. The source is invalid.
400 ErrorDBSelect An error occurred while querying database. An error occurred while querying database.
400 ErrorParametersTarget Target VPC Firewall ID not exist. Target VPC Firewall ID not exist.
400 ErrorParametersSourceTarget Source and target firewall is same. Source and target firewall is same.

See Error Codes for a complete list.

Release notes

See Release Notes for a complete list.